Merge pull request 'better-kubeconform' (#205) from better-kubeconform into main
Reviewed-on: #205
This commit was merged in pull request #205.
This commit is contained in:
@@ -1,10 +1,12 @@
|
||||
name: Validate Kubernetes Manifests
|
||||
|
||||
on:
|
||||
pull_request:
|
||||
branches: [main]
|
||||
push:
|
||||
branches: [main]
|
||||
paths:
|
||||
- '**.yml'
|
||||
- '**.yaml'
|
||||
- '!.gitea/workflows/**'
|
||||
- '!clusters/**/system-upgrade/crd.yml'
|
||||
|
||||
jobs:
|
||||
kubeconform:
|
||||
@@ -37,6 +39,7 @@ jobs:
|
||||
files: |
|
||||
**.yml
|
||||
!.gitea/workflows/**
|
||||
!clusters/**/system-upgrade/crd.yml
|
||||
|
||||
- name: Validate Manifests
|
||||
if: steps.changed-files.outputs.any_changed == 'true'
|
||||
@@ -53,6 +56,7 @@ jobs:
|
||||
["IPAddressPool"]="metallb.io/ipaddresspool_v1beta1.json"
|
||||
["SealedSecret"]="bitnami.com/sealedsecret_v1alpha1.json"
|
||||
["ClusterPolicy"]="nvidia.com/clusterpolicy_v1.json"
|
||||
["Plan"]="upgrade.cattle.io/plan_v1.json"
|
||||
)
|
||||
|
||||
EXIT_CODE=0
|
||||
@@ -62,7 +66,10 @@ jobs:
|
||||
while IFS= read -r file; do
|
||||
[ -z "$file" ] && continue
|
||||
echo "=== Validating: $file ==="
|
||||
KIND=$(yq -r '.kind // ""' "$file" 2>/dev/null || echo "")
|
||||
MANIFESTS=$(yq e '.[]' "$file" | jq -c 'select(.kind != null)')
|
||||
|
||||
for manifest in "${MANIFESTS[@]}"; do
|
||||
KIND=$(echo $manifest | yq -r '.kind // ""')
|
||||
|
||||
if [[ -n "$KIND" && -n "${SCHEMA_MAP[$KIND]}" ]]; then
|
||||
echo "Found $KIND - using custom schema"
|
||||
@@ -72,7 +79,7 @@ jobs:
|
||||
-schema-location "$SCHEMA_URL" \
|
||||
-cache "$KUBECONFORM_CACHE_DIR" \
|
||||
-output json \
|
||||
"$file"; then
|
||||
"$manifest"; then
|
||||
EXIT_CODE=1
|
||||
fi
|
||||
else
|
||||
@@ -81,10 +88,11 @@ jobs:
|
||||
-schema-location default \
|
||||
-cache "$KUBECONFORM_CACHE_DIR" \
|
||||
-output json \
|
||||
"$file"; then
|
||||
"$manifest"; then
|
||||
EXIT_CODE=1
|
||||
fi
|
||||
fi
|
||||
done
|
||||
|
||||
echo ""
|
||||
done <<< "${ALL_CHANGED_FILES}"
|
||||
|
||||
Reference in New Issue
Block a user